vexilo-naren[.]com
“Vexilo Naren™ - KI-Trading Deutschland 2026”
vexilo-naren.com — Контент недоступний (HTTP 502). Уособлення бренду: Binance; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 12/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 86/100. Реєстратор: REALTIME REGISTER.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain vexilo-naren.com was registered on February 21, 2026 through REALTIME REGISTER B.V. and is currently taken offline. DNS resolution points to IP address 104.21.76.126, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. Both authoritative nameservers, charles.ns.cloudflare.com and jacqueline.ns.cloudflare.com, are Cloudflare‑operated, indicating the site leveraged the provider's CDN and DDoS mitigation services. No SSL certificate is presented for the domain, suggesting that HTTPS was either not configured or was removed prior to takedown.
The page title observed during the brief window of activity was "Vexilo Naren™ - KI‑Trading Deutschland 2026," a title that does not reference the targeted brand but is consistent with a fraudulent front‑end. The threat classification is brand impersonation, specifically targeting the cryptocurrency exchange Binance, as indicated by the intelligence tag "Impersonates: binance" and the declared scam type. Reputation scoring is extremely low, with Gridinsoft assigning a trust score of 0 out of 100. The domain appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL, and VirusTotal recorded 12 positive detections out of 95 scanners, reinforcing the malicious assessment.
Despite the offline status, the infrastructure—Cloudflare edge IP, lack of TLS, and the use of a generic registrar—mirrors common patterns employed by actors seeking to host phishing or credential‑harvesting pages. Defenders should immediately add vexilo-naren.com to URL filtering and DNS blocklists, monitor the associated Cloudflare IP for any resurgence of malicious content, and extend brand protection measures for Binance to capture similar impersonation attempts. Continuous observation of newly registered domains using the same registrar or nameserver pattern is recommended to pre‑empt future campaigns.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260119-90954E Recipient: rtr-security-threats@realtimeregister.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога